Name: backlion
Type: User
Company: 渗透测试研究中心公众号【渗透测试研究中心】
Bio: Penetration Testing,WEB Security Research,Red Team, penetration testing and Research Center --->>http://www.cnblogs.com/backlion
Location: **成都
Blog: http://www.cnblogs.com/backlion
backlion's Projects
A tool mainly to erase specified records from Windows event logs, with additional functionalities.
The ultimate WinRM shell for hacking/pentesting
Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor authentication
An evil RAT (Remote Administration Tool) for macOS / OS X.
Slightly evil password strength checker
Execute DLL via the Excel.Application object's RegisterXLL() method
CVE-2018-8581
Some Attacks of Exchange SSRF ProxyLogon&ProxyShell
An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.
平常收集的python小脚本程序
Exphub[漏洞利用脚本库] 包括Webloigc、Struts2、Tomcat、Nexus、Solr、Jboss、Drupal的漏洞利用脚本,最新添加CVE-2020-5902、CVE-2020-11444、CVE-2020-10204、CVE-2020-10199、CVE-2020-1938、CVE-2020-2551、CVE-2020-2555、CVE-2020-2883、CVE-2019-17558、CVE-2019-6340
The official Exploit Database repository
Exploit Database binary exploits located in the /sploits directory
exploit-database-papers
Exploits for various CVEs
Windows Exploits
Some of my exploits.
Pwn stuff.
Repository that tracks public exploits, vulnerabilities and advisories that I [co-]discovered or [co-]authored.
POC for Cobalt Strike external C2
Python api for usage with cobalt strike's External C2 specification
A library for integrating communication channels with the Cobalt Strike External C2 server
Exploit that extracts Qualcomm's KeyMaster keys using CVE-2015-6639 and CVE-2016-2431
EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.
Scanning a network asset information script
F-Scrack is a single file bruteforcer supports multi-protocol
红/蓝队环境自动化部署工具
www.flash.cn 的钓鱼页,中文+英文
Fastjson <= 1.2.47 远程命令执行漏洞利用工具及方法